To prepare your Azure Active Directory for eformity.net follow the steps below:
- Create an 'Enterprise application', and select 'Non-gallery application':
- After you have created the application you can select 'Users and groups' on the left side. Authorize all users\groups who you grant access to eformity.net.
- When all users\groups have been assigned click 'Single sign-on' and select 'SAML'. This will make different options available:
- Basic SAML Configuration
At 'Identifier' and 'Reply URL' type the same url: https://<yoursubscription>.eformity.net/saml/signin - User Attributes & Claims
Some claims are already prefiled. Definied any additional claims if needed:
Tick 'Add new claim' and add the claim below:
Tick 'Add a group claim' and add the next claims as below:Name Namespace Attribute CommonName http://schemas.xmlsoap.org/claims user.displayname
The result should look like: - SAML Signing Certificate
Download the certificate as Base64 and sent this to your contactperson at eformity together with the 'Logon URL' (in the fourth block).
- Basic SAML Configuration
- After receiving this we activate your SSO.
Referent
https://learn.microsoft.com/nl-nl/azure/active-directory/develop/saml-claims-customization